To wydarzenie już się skończyło. Zapraszamy na inne ciekawe wydarzenia.

IT Security Open Day @Nordea

location icon
Nordea - Łużycka Office Park ul. Łużycka 8b, 81-537, Gdynia Zobacz na mapie
calendar icon
Od 12 Jun 17:30 do 12 Jun 17:30


Welcome to the 1st Technology Information Security Office (TISO) Poland Open Day on 12th of June!

Why Open Day?

Join us and take a chance to learn and discuss about the trends on new technologies in banking sector and the threats connected to them. Meet our security experts, feel the Nordea spirit in a casual atmosphere and enjoy delicious snacks :) Don't wait, bring your colleagues and register today!

The number of available seats is limited.

About TISO

The Technology Information Security Office (TISO) is accountable for Group level IT security and the Cyber Defence Centre at Nordea. We are providing operational security monitoring and security incident management across the IT landscape.

Machine learning, robotics, cloud computing. We're harnessing the power of technology to reinvent the future of banking. A digital revolution in Banking is underway, be part of it!





Registration 

There are only 20 seats available so hurry up!


AGENDA

New security challenges in modern banking, Marcin Marciniak

Today, the bank is not only an institution that deals with money of its clients. Today's bank provides additional services, insurance services, and confirmation of identity for other institutions. The expectations of users who no longer use service in branches to self-service websites, such as teleservice, the Internet or mobile applications, are growing.

The aim of the presentation is to discuss the trends on new technologies in banking sector and the threats connected to them.

1.Discussing trends on new technologies in the banking sector, through all operations on the Internet:

  • new identity services,
  • new financial services,
  • new access channels.

2.Presentation of new threats:

  • phishing,
  • malicious software,
  • the use of vulnerabilities in mobile applications,
  • identity theft,
  • money laundering by means of instant transfers and substituted persons,
  • taking control over the SMS confirmation channel.


Data Leakage Prevention Solutions, Marcin Pyzdrowski

The presentation answers the question:

     1.What The Data Leakage Prevention is?

2.Why the implementation of DLP is critical in the nowadays organizations?

3.Strategic decisions regarding the implementation of DLP in Nordea.

4.The DLP project in Nordea (work organization, general architecture).

5.The key partners supporting the Bank in the implementation of DLP.


Main challenges in SSL management, Bartłomiej Nabzdyk

The aim of the presentation is to discuss the rules for managing SSL certificates in the organization, to present how this issue is addressed in Nordea and to present development plans. EKM Team presentation

1. Main challenges in SSL management

2. SSL management in Nordea - current state

  • Business demand for SSL
  • User experience
  • Venafi Trust Protection Platform architecture

3. SSL Certificate maturity roadmap

  • SSL discovery scanning
  • Automated certificate provisioning
  • Venafi TrustNet
  • Code Signing


It's a trap! Implementing SecDevOps in Financial Services, Simon Goldsmith & Ignacio Arsuaga - NEW!!!

Through the unique lens of building secure SDLCs implemented in Financial Services, High Tech, Military and Government DevOps teams, and talking to colleagues throughout the software industry that have implemented SecDevOps at their companies, we will discuss 8 specific 'traps' of SecDevOps that we commonly see and how Nordea is taking this learning into their own SecDevOps programme.

  1. Common traps in SecDevOps
  2. Threat modelling case study
    • cyber criminals do DevOps too
  3. SecDevOps = Agile + CI/CD + Culture
    • Agile security focuses on processes and highlights change while accelerating delivery
    • CI/CD focuses on the SDLC through the tools that emphasise automation
    • Culture focuses on people highlighting roles and skills that support responsiveness